正在运行的进程
[PID: 440][\SystemRoot\System32\smss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 496][\??\C:\WINDOWS\system32\csrss.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 520][\??\C:\WINDOWS\system32\winlogon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 564][C:\WINDOWS\system32\services.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 576][C:\WINDOWS\system32\lsass.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 732][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 776][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 844][C:\WINDOWS\System32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 880][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 928][C:\WINDOWS\system32\svchost.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1220][C:\WINDOWS\Explorer.EXE] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\WinRAR\rarext.dll] <N/A><N/A>
[C:\PROGRA~1\FILSEC~1\Twister\Twshlext.dll] <FILSECLAB Corp.><1, 0, 1, 935>
[C:\WINDOWS\system32\nvcpl.dll] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\NVRSZHC.DLL] <NVIDIA Corporation><6.14.10.8195>
[C:\WINDOWS\system32\nvshell.dll] <N/A><N/A>
[C:\Program Files\Xi\NetTransport 2\NTIEHelper.dll] <Xi><1.91.12>
[PID: 1292][C:\WINDOWS\system32\spoolsv.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1488][C:\Program Files\Common Files\Real\Update_OB\realsched.exe] <RealNetworks, Inc.><0.1.0.3275>
[PID: 1540][C:\Program Files\Filseclab\Twister\twister.exe] <Filseclab Corporation><6, 0, 2, 18851>
[C:\Program Files\Filseclab\Twister\Twshlext.DLL] <FILSECLAB Corp.><1, 0, 1, 935>
[C:\Program Files\Filseclab\Twister\Quarantine.dll] <FILSECLAB Corp.><1, 0, 0, 487>
[C:\Program Files\Filseclab\Twister\W32Tools.dll] <FILSECLAB Corp.><1, 0, 0, 659>
[C:\Program Files\Filseclab\Twister\Virsubm.dll] <FILSECLAB Corp.><1, 0, 0, 184>
[C:\Program Files\Filseclab\Twister\emlib.dll] <FILSECLAB Corp.><1, 0, 0, 718>
[C:\Program Files\Filseclab\Twister\Regpro.dll] <FILSECLAB Corporation><1, 0, 0, 147>
[C:\Program Files\Filseclab\Twister\Decexp.dll] <FILSECLAB Corp.><1, 0, 0, 1648>
[C:\Program Files\Filseclab\Twister\Unchm.dll] <FILSECLAB Corp.><1, 0, 0, 80>
[C:\Program Files\Filseclab\Twister\unrar.dll] <N/A><N/A>
[C:\Program Files\Filseclab\Twister\unzip32.dll] <Info-ZIP><5.52>
[C:\Program Files\Filseclab\Twister\unacev2.dll] <N/A><N/A>
[C:\Program Files\Filseclab\Twister\plus.dll] <Filseclab Corporation><2.0.502.1050>
[PID: 1556][C:\WINDOWS\system32\ctfmon.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 1576][C:\Program Files\Common Files\Filseclab\FilMsg.exe] <费尔安全实验室><3, 1, 0, 927>
[PID: 2044][C:\WINDOWS\system32\nvsvc32.exe] <NVIDIA Corporation><6.14.10.8195>
[PID: 196][C:\WINDOWS\system32\wdfmgr.exe] <Microsoft Corporation><5.2.3790.1230 built by: dnsrv(bld4act)>
[PID: 316][C:\Program Files\UPHClean\uphclean.exe] <Microsoft Corporation><1.5.5.21>
[PID: 1448][C:\WINDOWS\System32\alg.exe] <Microsoft Corporation><5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)>
[PID: 172][C:\Program Files\Internet Explorer\iexplore.exe] <Microsoft Corporation><6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)>
[C:\Program Files\QQ2005\QQIEHelper.dll] <深圳市腾讯计算机系统有限公司><1, 1, 0, 5>
[C:\Program Files\Xi\NetTransport 2\NTIEHelper.dll] <Xi><1.91.12>
[C:\WINDOWS\system32\flash.ocx] <Macromedia, Inc.><7,0,14,0>
[PID: 3500][D:\程序\sreng2\SREng2\SREng.exe] <Smallfrogs Studio><2.0.21.505>
==================================
文件关联
.TXT OK. [%SystemRoot%\system32\NOTEPAD.EXE %1]
.EXE OK. ["%1" %*]
.COM OK. ["%1" %*]
.PIF OK. ["%1" %*]
.REG OK. [regedit.exe "%1"]
.BAT OK. ["%1" %*]
.SCR OK. ["%1" /S]
.CHM OK. ["C:\WINDOWS\hh.exe" %1]
.HLP OK. [%SystemRoot%\System32\winhlp32.exe %1]
.INI OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.INF OK. [%SystemRoot%\System32\NOTEPAD.EXE %1]
.VBS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.JS OK. [%SystemRoot%\System32\WScript.exe "%1" %*]
.LNK OK. [{00021401-0000-0000-C000-000000000046}]
==================================
Winsock 提供者
==================================